This IP address has been reported a total of
179
times from
55 distinct
sources.
141.76.94.28 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: proxydetection.research.netd.cs.tu-dresden.de:443
show less
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: proxydetection.research.netd.cs.tu-dresden.de:443
show less
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show moreDetected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: proxydetection.research.netd.cs.tu-dresden.de:443
show less
Blocked for recurring port scan.
Time: Tue May 19. 21:30:36 2026 +0200
IP: 141.76.94.28 (DE/German ...
show moreBlocked for recurring port scan.
Time: Tue May 19. 21:30:36 2026 +0200
IP: 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de)
Temporary blocks that triggered the permanent block:
Tue May 19 17:10:25 2026 *Port Scan* detected from 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de). 11 hits in the last 260 seconds
Tue May 19 18:15:14 2026 *Port Scan* detected from 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de). 11 hits in the last 245 seconds
Tue May 19 19:20:28 2026 *Port Scan* detected from 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de). 11 hits in the last 255 seconds
Tue May 19 20:25:23 2026 *Port Scan* detected from 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de). 11 hits in the last 245 seconds
Tue May 19 21:30:35 2026 *Port Scan* detected from 141.76.94.28 (DE/Germany/proxydetection.research.netd.cs.tu-dresden.de). 11 hits in the last 251 seconds
show less
4 incidents: port scanning. First: 2026-05-12 04:53, Last: 2026-05-12 08:04 UTC. Triggers: non-publi ...
show more4 incidents: port scanning. First: 2026-05-12 04:53, Last: 2026-05-12 08:04 UTC. Triggers: non-public-port,firewall-tcp,ufw-repeater,ufw-repeater.
show less
Blocked by UFW (TCP on 38994)
Source port: 53390
TTL: 54
Packet length: 52
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 38994)
Source port: 53390
TTL: 54
Packet length: 52
TOS: 0x00
This report (for 141.76.94.28) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW (TCP on 38994)
Source port: 49745
TTL: 54
Packet length: 52
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 38994)
Source port: 49745
TTL: 54
Packet length: 52
TOS: 0x00
This report (for 141.76.94.28) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Honeypot [fra-de-honeypot]: Unauthorized traffic (261 bytes of payload); 38994 [8] TCP
Reported by D ...
show moreHoneypot [fra-de-honeypot]: Unauthorized traffic (261 bytes of payload); 38994 [8] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Blocked by UFW (TCP on 38994)
Source port: 45283
TTL: 54
Packet length: 52
TOS: 0x00
This report (f ...
show moreBlocked by UFW (TCP on 38994)
Source port: 45283
TTL: 54
Packet length: 52
TOS: 0x00
This report (for 141.76.94.28) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Showing 1 to
15
of 179 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ